package com.sun.controller;

import org.springframework.stereotype.Controller;
import org.springframework.ui.Model;
import org.springframework.web.bind.annotation.RequestMapping;
import org.springframework.web.bind.annotation.RequestParam;
import org.thymeleaf.util.StringUtils;

import javax.servlet.http.HttpSession;

@Controller
public class loginController {

    @RequestMapping("/user/login")
    public String login(@RequestParam("username") String username,
                        @RequestParam("password") String password ,
                        Model model ,HttpSession session){

        if (!StringUtils.isEmpty(username) && "123456".equals(password) ){
            session.setAttribute("loginUser",username);
            return "redirect:/main";
        }else {
        model.addAttribute("msg","employees");

        return "index";
        }
        }
        @RequestMapping("/user/logout")
        public String logout(HttpSession session){

            session.invalidate();
            return "redirect:/main";

        }
}
